QID 198652

Date Published: 2022-02-07

QID 198652: Ubuntu Security Notification for Django Vulnerabilities (USN-5269-1)

Django incorrectly handled certain templatetags.
Django incorrectly handled file uploads.

A remote attacker could possibly use this issue to perform across-site scripting attack.
A remoteattacker could possibly use this issue to cause django to hang, resultingin a denial of service.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5269-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198652

    Software Advisories
    Advisory ID Software Component Link
    USN-5269-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5269-1